Home Malware Programs Trojans Brambul.A

Brambul.A

Posted: January 2, 2011

Threat Metric

Threat Level: 8/10
Infected PCs: 513
First Seen: January 2, 2011
Last Seen: December 25, 2020
OS(es) Affected: Windows

Aliases

Trojan.Win32.Patched [Ikarus]Trojan/Win32.Patched [AhnLab-V3]Artemis!C3D861241254 [McAfee-GW-Edition]Trojan.Win32.Patched.lp [Kaspersky]Generic.dx!vpp [McAfee]Win32/Patched.GB [AVG]Trojan.Win32.Patched.lk [Kaspersky]Win32:WinPatch [Avast]W32/Patched.Y!tr [Fortinet]Win32.Dat.15 [DrWeb]Win32:Patched-UE [Avast]Artemis!D2112DC4B1D3 [McAfee]W32/Patched.KJA!tr [Fortinet]Win32/Patcher.S [eTrust-Vet]TR/Patched.Gen [AntiVir]
More aliases (181)

Technical Details

File System Modifications

Tutorials: If you wish to learn how to remove malware components manually, you can read the tutorials on how to find malware, kill unwanted processes, remove malicious DLLs and delete other harmful files. Always be sure to back up your PC before making any changes.

The following files were created in the system:



C:\rundllxxxx.exe File name: rundllxxxx.exe
Size: 314.88 KB (314880 bytes)
MD5: 3fabf5a34457e6cbafbf03c8300dee9b
Detection count: 197
File type: Executable File
Mime Type: unknown/exe
Path: C:\rundllxxxx.exe
Group: Malware file
Last Updated: January 2, 2011
%APPDATA%\xssend2\svcnost.exe File name: svcnost.exe
Size: 133.12 KB (133120 bytes)
MD5: 8dc699354a5a9098b8de3240175e381d
Detection count: 82
File type: Executable File
Mime Type: unknown/exe
Path: %APPDATA%\xssend2
Group: Malware file
Last Updated: January 9, 2011
%WINDIR%\system32\mixerc.exe File name: mixerc.exe
Size: 66.04 KB (66048 bytes)
MD5: adaf2b7102918ef38fb30c08a4ee2b08
Detection count: 80
File type: Executable File
Mime Type: unknown/exe
Path: %WINDIR%\system32
Group: Malware file
Last Updated: January 9, 2011
%WINDIR%\Explorer.exe File name: Explorer.exe
Size: 1.03 MB (1033216 bytes)
MD5: c3d86124125473d3d0090fc23ee36ed1
Detection count: 64
File type: Executable File
Mime Type: unknown/exe
Path: %WINDIR%
Group: Malware file
Last Updated: January 25, 2011
%WINDIR%\Temp\ca8xbmj.exe File name: ca8xbmj.exe
Size: 485.88 KB (485888 bytes)
MD5: 4b538b1cf8d1d9617bde14c1d90b9e74
Detection count: 62
File type: Executable File
Mime Type: unknown/exe
Path: %WINDIR%\Temp
Group: Malware file
Last Updated: January 2, 2011
%APPDATA%\ywhqmkq2qmszbixonjxjaneedrvna1l2\csrss.exe File name: csrss.exe
Size: 64.52 KB (64522 bytes)
MD5: 5ac4816a30b5f67c4e4fb036210db89f
Detection count: 52
File type: Executable File
Mime Type: unknown/exe
Path: %APPDATA%\ywhqmkq2qmszbixonjxjaneedrvna1l2
Group: Malware file
Last Updated: January 13, 2011
%WINDIR%\Explorer.exe File name: Explorer.exe
Size: 1.03 MB (1036288 bytes)
MD5: 18b8389cd7321564570e6acb554a690b
Detection count: 50
File type: Executable File
Mime Type: unknown/exe
Path: %WINDIR%
Group: Malware file
Last Updated: January 6, 2011
%APPDATA%\cwh1c1lrmpsiczt3okpa3shz31y1hbj2\csrss.exe File name: csrss.exe
Size: 73.73 KB (73738 bytes)
MD5: e3426361890417d9ee4f18c4ca129121
Detection count: 21
File type: Executable File
Mime Type: unknown/exe
Path: %APPDATA%\cwh1c1lrmpsiczt3okpa3shz31y1hbj2
Group: Malware file
Last Updated: January 2, 2011
%WINDIR%\explorer.exe File name: explorer.exe
Size: 2.61 MB (2613248 bytes)
MD5: 8faf1b63aad343d29788c3226f82826b
Detection count: 16
File type: Executable File
Mime Type: unknown/exe
Path: %WINDIR%
Group: Malware file
Last Updated: January 13, 2011
%APPDATA%\2umijtbedpfggierg1u3xpcowutvbt22\csrss.exe File name: csrss.exe
Size: 73.73 KB (73738 bytes)
MD5: 2bc8bf41fdb7da22700ebcceb0323412
Detection count: 14
File type: Executable File
Mime Type: unknown/exe
Path: %APPDATA%\2umijtbedpfggierg1u3xpcowutvbt22
Group: Malware file
Last Updated: January 2, 2011
%WINDIR%\Explorer.exe File name: Explorer.exe
Size: 1.03 MB (1033216 bytes)
MD5: d2112dc4b1d396b985e6fc4236c2181b
Detection count: 14
File type: Executable File
Mime Type: unknown/exe
Path: %WINDIR%
Group: Malware file
Last Updated: January 18, 2011
funzipa.dll File name: funzipa.dll
Size: 10.75 KB (10752 bytes)
MD5: a102ff178b4fddbea45d7d85d42a5761
Detection count: 7
File type: Dynamic link library
Mime Type: unknown/dll
Group: Malware file
Last Updated: January 2, 2011
%WINDIR%\System32\lwcfsintufdqwg.dll File name: lwcfsintufdqwg.dll
Size: 391.68 KB (391680 bytes)
MD5: f8b097113e71036f19190381a183c89a
Detection count: 5
File type: Dynamic link library
Mime Type: unknown/dll
Path: %WINDIR%\System32
Group: Malware file
Last Updated: January 5, 2011
%WINDIR%\system32\mevjtubhswueaao.dll File name: mevjtubhswueaao.dll
Size: 419.84 KB (419840 bytes)
MD5: cd8f6131d951782b44c7b3bbcb093cc7
Detection count: 4
File type: Dynamic link library
Mime Type: unknown/dll
Path: %WINDIR%\system32
Group: Malware file
Last Updated: January 2, 2011
%WINDIR%\System32\drivers\trs.sys File name: trs.sys
Size: 8.7 KB (8704 bytes)
MD5: 42c95df9f7a20a618ac4d1dd81ed1b9f
Detection count: 2
File type: System file
Mime Type: unknown/sys
Path: %WINDIR%\System32\drivers
Group: Malware file
Last Updated: January 2, 2011

Registry Modifications

The following newly produced Registry Values are:

Regexp file mask%WINDIR%\weihp.exe
Loading...